GridinSoft Threat Intelligence
valid-iterable.js threat report
GridinSoft Anti-Malware detection
Detected by GridinSoft before you download
The current ThreatInfo record shows this exact file hash detected as Risk.CoinMiner. Download GridinSoft Anti-Malware to scan the device, confirm whether this file is present, and remove the detected object if it is found.
- Detection name
- Risk.CoinMiner
- Recommended action
- Scan and remove
- Last analysis
- 2023-03-01 23:40:04 (3 years ago)
- File hash
- 00d5bc09bd27c0a7c201169426aaa936
Why it matters
Why GridinSoft flags this file
GridinSoft identifies the sample as Risk.CoinMiner.
First seen 2017-06-07 18:05:28 (8 years ago); latest analysis 2023-03-01 23:40:04 (3 years ago).
ThreatInfo has seen this file in user or system paths listed below. Unexpected locations increase the need for local verification.
Recommended action
What to do next
- Compare the MD5 above with the file found on the device.
- Check whether the file appears in the observed locations or under one of the alternate names.
- Run GridinSoft Anti-Malware to confirm the detection and remove the file if it is present.
File context
valid-iterable.js is a Windows file recorded in the ThreatInfo database. The current detection status is Risk.CoinMiner, based on the latest analysis from 2023-03-01 23:40:04 (3 years ago).
If valid-iterable.js appears on your computer unexpectedly, treat it as suspicious. Check its location, digital signature, and recent system changes before allowing it to run. A full anti-malware scan is recommended when this file is detected as Risk.CoinMiner.
File Details
| MD5: | 00d5bc09bd27c0a7c201169426aaa936 |
| Size: | 195 bytes |
| First Published: | 2017-06-07 18:05:28 (8 years ago) |
| Latest Published: | 2023-03-01 23:40:04 (3 years ago) |
| Status: | Risk.CoinMiner (on last analysis) | |
| Analysis Date: | 2023-03-01 23:40:04 (3 years ago) |
Detection screenshot
The screenshot is a visual record of a GridinSoft Anti-Malware detection for this sample. Use the hash and metadata above as the primary identifiers when comparing the file on your system.
Common Places:
| %localappdata%\popcorn time ce yify\node_modules\memoizee\node_modules\es5-ext\node_modules\es6-iterator |
| %localappdata%\popcorn time ce yify\node_modules\memoizee\node_modules\es6-weak-map\node_modules\es6-iterator |
| %localappdata%\popcorn time community\node_modules\memoizee\node_modules\es5-ext\node_modules\es6-iterator |
| %localappdata%\popcorn time community\node_modules\memoizee\node_modules\es6-weak-map\node_modules\es6-iterator |
| %localappdata%\popcorn time community\node_modules\memoizee\node_modules\es5-ext\node_modules |
| %localappdata%\popcorn time community\node_modules\memoizee\node_modules\es6-weak-map\node_modules |
| %localappdata%\popcorn time ce yify\node_modules\memoizee\node_modules\es5-ext\node_modules |
| %localappdata%\popcorn time ce yify\node_modules\memoizee\node_modules\es6-weak-map\node_modules |
| %system%\xmr64\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\node_modules |
| %windir%\nvidia\node_modules\npm\node_modules\node-gyp\node_modules\path-array\node_modules\array-index\node_modules\es6-symbol\node_modules\es5-ext\node_modules |
ThreatInfo has observed valid-iterable.js in the locations listed above. Files found in temporary folders, user profile folders, startup locations, or unusual application directories should be reviewed more carefully than files installed under a known program directory.
Geography:
29 observed countriesThe strongest geographic signal for this file is Russian Federation with 61.1% of observed hits. Geographic distribution can help identify targeted campaigns, regional software bundles, or where a file is most commonly reported.
OS Version:
The most common operating system signal for valid-iterable.js is Windows 10 with 63.0% of observed hits. If your system differs from the common profile, check whether the file was introduced by a specific installer, archive, or removable device.
Analysis
Report conclusion
GridinSoft detects this file as Risk.CoinMiner
This report identifies valid-iterable.js by MD5 00d5bc09bd27c0a7c201169426aaa936. If the same file is present on your device, scan the system and remove the detected object after confirming the hash and location.